- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
11-08-2018 07:12 AM
Hi all!
When I create an aggregate group, there is the possibility to enable LACP.
But when I don't enable LACP, which ethernet standard is enabled then?
Does the firewall utilize bandwith over all links as in LACP?
Thank you
11-08-2018 09:56 AM
Link Aggregation without LACP uses a session hash to load balance over the member interfaces for that group. It uses the full bandwidth available in the group.
The risk of this is that if you don't use LACP and one of the member interfaces goes down, sessions will continue to be forwarded to that interface (based on the hash), blackholing traffic.
So you can do it, but I wouldn't recommend it 🙂
11-09-2018 12:43 AM
gwesson is right, the pan uses a hash algorithm, you can find details here:
https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClV5CAK
But I do not agree with link loss. When the firewall detects a link is down, it will not be used any more.
Anyway it is better to use LACP. As this actively exchanges information over the links this can help when a link is up but does not really forward traffic. If this is the case it gets removed from the LACP group.
 
					
				
				
			
		
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!

